Vulnerabilities > HP > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-06-26 CVE-2017-7657 HTTP Request Smuggling vulnerability in multiple products
In Eclipse Jetty, versions 9.2.x and older, 9.3.x (all configurations), and 9.4.x (non-default configuration with RFC2616 compliance enabled), transfer-encoding chunks are handled poorly.
network
low complexity
eclipse debian netapp hp oracle CWE-444
critical
9.8
2018-02-15 CVE-2017-8981 Improper Input Validation vulnerability in HP Intelligent Management Center 7.3
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0506 was found.
network
low complexity
hp CWE-20
critical
9.8
2018-02-15 CVE-2017-8979 Unspecified vulnerability in HP Integrated Lights-Out 2 Firmware 2.29
Security vulnerabilities in the HPE Integrated Lights-Out 2 (iLO 2) firmware could be exploited remotely to allow authentication bypass, code execution, and denial of service.
network
low complexity
hp
critical
9.8
2018-02-15 CVE-2017-8977 Improper Input Validation vulnerability in HP Moonshot Provisioning Manager Appliance 1.20
A Remote Denial of Service vulnerability in Hewlett Packard Enterprise Moonshot Provisioning Manager Appliance version v1.20 was found.
network
low complexity
hp CWE-20
critical
9.1
2018-02-15 CVE-2017-8976 Improper Input Validation vulnerability in HP Moonshot Provisioning Manager Appliance 1.20
A Remote Code Execution vulnerability in Hewlett Packard Enterprise Moonshot Provisioning Manager Appliance version v1.20 was found.
network
low complexity
hp CWE-20
critical
9.8
2018-02-15 CVE-2017-8975 Improper Input Validation vulnerability in HP Moonshot Provisioning Manager Appliance 1.20
A Remote Code Execution vulnerability in Hewlett Packard Enterprise Moonshot Provisioning Manager Appliance version v1.20 was found.
network
low complexity
hp CWE-20
critical
9.8
2018-02-15 CVE-2017-8960 Unspecified vulnerability in HP products
An Authentication Bypass vulnerability in HPE MSA 1040 and MSA 2040 SAN Storage IN version GL220P008 and earlier was found.
network
low complexity
hp
critical
9.8
2018-02-15 CVE-2017-8957 Improper Input Validation vulnerability in HP Intelligent Management Center 7.2
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.2 was found.
network
low complexity
hp CWE-20
critical
9.8
2018-02-15 CVE-2017-8956 Improper Input Validation vulnerability in HP Intelligent Management Center 7.3
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 was found.
network
low complexity
hp CWE-20
critical
9.8
2018-02-15 CVE-2017-8954 Improper Input Validation vulnerability in HP Intelligent Management Center 7.2
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.2 was found.
network
low complexity
hp CWE-20
critical
9.8